Yeah, Amazon is updating the Fire 7 again! It's basically the same tablet as the 2017 Austin, and 2015 Ford. I wonder if it uses the same shortable Mediatek processor for a day one root. It's available for pre-order.
https://developer.amazon.com/docs/fire-tablets/ft-device-and-feature-specifications.html
> MediaTek MT8163V/B (in 32-bit mode)
xyz` said:
https://developer.amazon.com/docs/fire-tablets/ft-device-and-feature-specifications.html
> MediaTek MT8163V/B (in 32-bit mode)
Click to expand...
Click to collapse
Hmm would that mean @diplomatic mtk su might work on it? I know its only supposed to work on 64 bit MediaTek, but it's the same chip as the HD8.
Either way, I'm sure you or someone else will crack it quickly.
Kctucka said:
Hmm would that mean @diplomatic mtk su might work on it? I know its only supposed to work on 64 bit MediaTek, but it's the same chip as the HD8.
Either way, I'm sure you or someone else will crack it quickly.
Click to expand...
Click to collapse
Or there's a spot to short on it.
Let's hope
Pix12 said:
Yeah, Amazon is updating the Fire 7 again! It's basically the same tablet as the 2017 Austin, and 2015 Ford. I wonder if it uses the same shortable Mediatek processor for a day one root. It's available for pre-order.
Click to expand...
Click to collapse
Biggest change will likely be support for FireOS v6 (based on Android 7.1). Much easier to work with vs the Lollipop foundation FireOS v5.
Kctucka said:
Hmm would that mean @diplomatic mtk su might work on it? I know its only supposed to work on 64 bit MediaTek, but it's the same chip as the HD8.
Either way, I'm sure you or someone else will crack it quickly.
Click to expand...
Click to collapse
Pix12 said:
Or there's a spot to short on it.
Let's hope
Click to expand...
Click to collapse
With that chip, there is a good chance that mtk-su will crack it. It does support 32-bit kernels now, if that's what they're talking about.
As for unlocking the bootloader, your options might be limited. It doesn't matter if there's a test point that will get you into bootrom mode. You still need that LK vulnerability to apply the unlock exploit. There's a decent possibility that it has been patched. And there's nothing to downgrade to. So in a nutshell, you may be able to get temporary root, but it's not clear what you will be able to do with it.
Or maybe I shouldn't have said any of that...?
diplomatic said:
With that chip, there is a good chance that mtk-su will crack it. It does support 32-bit kernels now, if that's what they're talking about.
As for unlocking the bootloader, your options might be limited. It doesn't matter if there's a test point that will get you into bootrom mode. You still need that LK vulnerability to apply the unlock exploit. There's a decent possibility that it has been patched. And there's nothing to downgrade to. So in a nutshell, you may be able to get temporary root, but it's not clear what you will be able to do with it.
Or maybe I shouldn't have said any of that...
Click to expand...
Click to collapse
Good to know. Amazon's tracking your every post now...
I'm not sure how much they care about a few people on a development board using methods that require Linux and cracking open a case.
Related
I received an onlive microconsole free from PAX solely for the reason of hacking (as did about 5000 others). My primary goal is to be able to put Google TV on it as it has very similar specs to some existing set top boxes. (Nixeus fusion xs, which also has sources available)
The source code for the consoles OS can be found here
http://opensource.onlive.com/
I poked around inside the zips and certainly contains all the drivers for generic linux. The interesting thing is they included the SoCs build folder giving instructions for android.
The kicker is, I have no idea how to build an OS from source and modify it nor do I know about getting it on to the machine. I took it apart and it has a block of 12 pins, which I presume are for nand reading and writing. I've glitched /jtagged a few 360s so I am familiar with the process of nand modifications, I just have no clue how to find out which pins to use on this board. The microconsole is keyboard and mouse compatible but I have not found a way to enter a terminal or bootloader.
The easiest thing to do is look for serial ports because with a serial connection you can most of the flash fw and stuff...
would help if you'd post some specs and pics
Reversedhex said:
The easiest thing to do is look for serial ports because with a serial connection you can most of the flash fw and stuff...
would help if you'd post some specs and pics
Click to expand...
Click to collapse
any news? I'am have one microconsole and can post here photo's. I'am found 3pin area but it's not a jtag perhaps.
suddo said:
any news? I'am have one microconsole and can post here photo's. I'am found 3pin area but it's not a jtag perhaps.
Click to expand...
Click to collapse
additional pictures
Update?
suddo said:
additional pictures
Click to expand...
Click to collapse
Has any progress been made on this?
Anyone ?
Any news to microconsole "hacking"?
Are there any ways to get toolchain to build OS sources?
Especially regarding to OnLive soon closure
Toshik23 said:
Any news to microconsole "hacking"?
Are there any ways to get toolchain to build OS sources?
Especially regarding to OnLive soon closure
Click to expand...
Click to collapse
I've got a HW engr. friend working on it ... Even just to get Shell
I DL the FULL open source proj. and I'd suggest you do the same before they take it down
opensource.onlive.com
Toshik23 said:
Any news to microconsole "hacking"?
Are there any ways to get toolchain to build OS sources?
Especially regarding to OnLive soon closure
Click to expand...
Click to collapse
ahze85283 said:
I've got a HW engr. friend working on it ... Even just to get Shell
I DL the FULL open source proj. and I'd suggest you do the same before they take it down
opensource.onlive.com
Click to expand...
Click to collapse
ahze85283 said:
I've got a HW engr. friend working on it ... Even just to get Shell
I DL the FULL open source proj. and I'd suggest you do the same before they take it down
opensource.onlive.com
Click to expand...
Click to collapse
upload this sdk to googledrive pls.
Try this nixeus.com/?p=171 .
Im also quite interested in what can become of this. Hell even drivers that would make the console version of the the controller work on a pc would be something.
GitHub
not My Github but I did Run across this
https// github.com/ samdmarshall/ Onlive-Source-Backup
better than any Google Drive Link I can Give
Still waiting on a few HW Tools from China [Needed a New UART adapter amount others]
I'll Keep you Updated ...
ahze85283 said:
not My Github but I did Run across this
https// github.com/ samdmarshall/ Onlive-Source-Backup
better than any Google Drive Link I can Give
Still waiting on a few HW Tools from China [Needed a New UART adapter amount others]
I'll Keep you Updated ...
Click to expand...
Click to collapse
Anything New man i really wanna find a use for this microconsole i dont like throwing Tech away
Has any more progress been made on this? I loved the OL service in it's prime and it'd be a shame to throw the microconsole away if there's any legitimate use for it.
I'm still digging to the code to verify what I can do with it but with 3 uart adapters not arriving I'm kind of at an impasse. I'm not done yet though I even bought an extra one off of ebay for $17 as an extra hardware in case I fry 1
+1 in hoping someone manages to get some other software running on it. would love to repurpose it as a Steam/shield streaming box
fingers crossed.
not enough people interested i guess, i mean it's no more than a thin client if im correct. either way if kodi + steamos could be installed great
So interseted in OnLive
keep the good work
i am also digging into the codes and have experience in GL low-level programming and high level
would be happy to share
snowwhiteln13 said:
keep the good work
i am also digging into the codes and have experience in GL low-level programming and high level
would be happy to share
Click to expand...
Click to collapse
Sure i'd love some help ... without a uart i cant figure out the trigger for sw/fw upgrade. I think i've got a passable image for an os ... in source. I don't know formt required.
Direct message me i'll connect on hangout or something
ahze85283 said:
Sure i'd love some help ... without a uart i cant figure out the trigger for sw/fw upgrade. I think i've got a passable image for an os ... in source. I don't know formt required.
Direct message me i'll connect on hangout or something
Click to expand...
Click to collapse
i had direct message you
Me and a few friends of mine are waiting to use microconsole again. It has super gamepad. It has built in DVR button and playback buttons that has many potential to use it on pc or via micro console.
Please keep us updating.
Come on lets go free custom kernel loading!!
i am trying to port kexec to the r800x and i need some help.
right now i can get it to run up until i try to load a kernel into memory and gives me the error
"cannot find free area of memory xxxxxxx bytes"
i dont know much about programming but i can do some simple things in c++
i think you might be able to change the kexec kernel symbols by patching /dev/kmem
..... i believe that the kernel by default doesnt have the kexec module loaded(what im saying is that the kernel symbols for kexec arent enabled.) so we might have to make a kexec module.
if anyone is interesting in helping me please email me at [email protected] or [email protected] or you can skype me at darkfate246
any help is welcome
My first question is with the ability to unlock our bootloader, why would we need this?
the Reason why is so people wont have to pay to use a custom kernel.
and if we can load a custom kernel without unlocking the phone we can do almost anything!
"cannot find free area of memory xxxxxxx bytes"
Click to expand...
Click to collapse
You may just be getting the error as the phone doesn't have enough internal space or ram. (I can't remember what they are so I might be wrong there.)
wouldnt there be more free memory if i started kexec from inside cwm recovery
quick question i need help compiling a driver as a module?
im trying to compile memmap as a module
is there anyone that is willing to help me right now?
Someone make this a sticky in the development forum so more people can work on this.
Sent from my R800x using Tapatalk 2
darkfate246 said:
i was wondering if its because im missing the /sys/firmware/memmap/ files and it cant read a map of what memory it can use.
and if someone with a unlocked bootloader and custom kernel would look and see if they have the /sys/firmware/memmap/ directory? it would be much appreciated if you could send me an copy of the directory.
Click to expand...
Click to collapse
Does not exist on CM9 Kernel
Pax
that sucks... i wonder if this can be of any use http://s8.invisionfree.com/QHSOFT_SECURITY/ar/t14.htm
its about patching the kernel through /dev/kmem which we have
eventually i want to start to port ubuntu to the xperia play but the only thing stopping me now is the locked bootloader ^_^
oh and if anyone needs some extra processing power i have a laptop in my room thats doing nothing its a core2 t7200 2ghz 2gb ram and has a 80gb hdd i can set it up for vnc, ssh etc if you need and i also have my main computer available for resources if you really! need it.
its a core i3 380m with 8gb ram
i just thought that because im not using the core2 i could lend it out to someone who could really use it ^_^
I've heard of developers completely bypassing the Motorola Droid RAZR's bootloader with this! I think this thread needs a sticky and hopefully this gets looked at!
Selim873 said:
I've heard of developers completely bypassing the Motorola Droid RAZR's bootloader with this! I think this thread needs a sticky and hopefully this gets looked at!
Click to expand...
Click to collapse
^ thats what gave me the idea of porting it to the xperia play
weird just now while i was looking through the original kernel config menus i noticed that kexec system call isnt checked? i wonder if we can use some form of a kmem patch to enable the system call for kexec and maybe that will fix the error im getting?
Oh god we gotta figure this out quick before Verizon ruins this for us.
Also, sticky pronto.
DubleJayJ said:
Oh god we gotta figure this out quick before Verizon ruins this for us.
Click to expand...
Click to collapse
how could they ruin it....but then again it is verizon
darkfate246 said:
how could they ruin it....but then again it is verizon
Click to expand...
Click to collapse
With Verizon, anything is possible. We had root, but 2.3.4 blocked root. Who would of guessed.
DubleJayJ said:
With Verizon, anything is possible. We had root, but 2.3.4 blocked root. Who would of guessed.
Click to expand...
Click to collapse
That's just verizon giving their customers the middle finger... I personally think that Sony should slap Verizon by allowing their users to root and unlock their plays when upgraiding to ICS. This might alert Verizon that at least one company has decided to side with their customers and won't stand Verizon's attempt to force users on what Verizon deems to be "old" phones to upgrade; the "upgrade" was actually made to kill important features and make the average user enough pissed off that they buy a new phone at full price, and hopefully a droid phone that is able to suck more money from the user.
Sent from my R800x using Tapatalk 2
someone should see if the guy that got kexec working on the razr would help us?
darkfate246 said:
someone should see if the guy that got kexec working on the razr would help us?
Click to expand...
Click to collapse
I second this and third and fourth it too!
Sent from my R800x using Tapatalk 2
So i just got my amazon fire hd 8 and im wondering if there is any big difference between the 7 inch i mean that one has custom roms and TWRP. But whats so different about the 8 and 10 that no one has tried more stuff on it. It seems like no one really has the 8 and isnt trying to change more on it. Does anyone have any feedback or work they have been working on?
The 8 and 10 are not near as popular as the 7". Plus the 8 and 10 just got root and doesn't seem to have a very good fastboot mode. Don't know that we will ever see much development for the 8 and 10.
coopmaster said:
So i just got my amazon fire hd 8 and im wondering if there is any big difference between the 7 inch i mean that one has custom roms and TWRP. But whats so different about the 8 and 10 that no one has tried more stuff on it. It seems like no one really has the 8 and isnt trying to change more on it. Does anyone have any feedback or work they have been working on?
Click to expand...
Click to collapse
earlier firmware version (5.0.x) for the 7in Fire allows booting unsigned recovery.img so custom Recovery can be used
the HD 10 or HD 8 don't allow that on any firmware version
Sent from my XT1080 using XDA Labs
so the firmware is upgraded? or is it a different chipset?
coopmaster said:
so the firmware is upgraded? or is it a different chipset?
Click to expand...
Click to collapse
different chip
Sent from my KFFOWI using XDA Labs
---------- Post added at 11:54 AM ---------- Previous post was at 11:49 AM ----------
https://developer.amazon.com/appsan...ications/01-device-and-feature-specifications
Sent from my KFFOWI using XDA Labs
so does that mean that flashfire doesnt work?
coopmaster said:
so does that mean that flashfire doesnt work?
Click to expand...
Click to collapse
doesn't seem to
Sent from my KFFOWI using XDA Labs
weak, i wonder are there any leads you know of that are being talked about?
I'd imagine were not going to see much going on with these at least until Flashfire is compatible. That's what I'm hoping for at least but I don't know much about dev.
I have tried using every version of Flashfire from about v.24 up on my Fire HD 8 5.1.1. All ended in the same fashion. Flashfire would basically just reboot the device after running for a few secs no matter the action or combination of options. The latest Flashfire v.30 makes it to the black screen but then hangs there for at least 20 mins and nothing. (havent let it sit longer) I did lose the ability to enter stock recovery on one of my Fire HD 8s somewhere along the way most likely using Flashify to attempt to install twrp when I first started playing around with these a few weeks back. I was finally able to get back into stock recovery yesterday on it.
But im just trying to understand the root mode. As it seems the root isnt complete because alot of apps dont work. I am checking on this because i believe fire OS is garbage and makes the devices run very slow. Still trying to work on this but mostly what i know about the progress of the HD 8 and 10 is that kingroot works and thats about it.
coopmaster said:
But im just trying to understand the root mode. As it seems the root isnt complete because alot of apps dont work. I am checking on this because i believe fire OS is garbage and makes the devices run very slow. Still trying to work on this but mostly what i know about the progress of the HD 8 and 10 is that kingroot works and thats about it.
Click to expand...
Click to collapse
Let me understand this a little more clearly and Ill see if I can help you.
First off you're saying you were able to gain root access using kingroot?
Have you tried to install the Google playstore at all yet?
Also we are pretty much stuck with Fire Os for now but can improve it some.
Jstame said:
Let me understand this a little more clearly and Ill see if I can help you.
First off you're saying you were able to gain root access using kingroot?
Have you tried to install the Google playstore at all yet?
Also we are pretty much stuck with Fire Os for now but can improve it some.
Click to expand...
Click to collapse
Yeah I understand that. I have google play store but it sucks and we have very limited usability with root. I understand where we are but it doesn't mean there's not improvement that can still come. Even with a locked bootloader doesn't mean everything is impossible.
coopmaster said:
But im just trying to understand the root mode. As it seems the root isnt complete because alot of apps dont work. I am checking on this because i believe fire OS is garbage and makes the devices run very slow. Still trying to work on this but mostly what i know about the progress of the HD 8 and 10 is that kingroot works and thats about it.
Click to expand...
Click to collapse
what apps don't work?
Sent from my XT1080 using XDA Labs
coopmaster said:
Yeah I understand that. I have google play store but it sucks and we have very limited usability with root. I understand where we are but it doesn't mean there's not improvement that can still come. Even with a locked bootloader doesn't mean everything is impossible.
Click to expand...
Click to collapse
I don't use kinguser I switched to SuperSu. But yes other then a little debloating, changing the stock Fire launcher, removing the adds, and adding Google playstore to get away from the Amazon Appstore there's not much else of going on. Lots of risk goes into messing with these cause the bootloaders so there would have to be a super high demand but people are turned off by this crap Fire OS. Devs are busy people all we can do is wait and see if anything happens. Unless you have a few ideas?
Jstame said:
I don't use kinguser I switched to SuperSu. But yes other then a little debloating, changing the stock Fire launcher, removing the adds, and adding Google playstore to get away from the Amazon Appstore there's not much else of going on. Lots of risk goes into messing with these cause the bootloaders so there would have to be a super high demand but people are turned off by this crap Fire OS. Devs are busy people all we can do is wait and see if anything happens. Unless you have a few ideas?
Click to expand...
Click to collapse
True but it doesn't stop us from looking into it. Well first flashfire doesn't work. If it is root we should be able to write a custom recovery (or at least temporarily) or has anyone looked at the boot partitions yet?One thing is that amazon are truly idiots because if I brick mine I don't really care they usually give out replacements left and right. I doubt we will get bootloader unlock but we should be able to get custom ROMs somehow.
I was reading about drammer and how they have tested multiple phones on unrooting them? could someone possibly get this to work on the S7? i know it wont lead to roms, and i have no clue if this is really helpful but i just wanted to ask. and to also inform them about the this new threat.
I tried posting the web link but im "new" (what i get for not posting as much) you can just google Drammer and it should come out it is also named Rowhammer bitflips
Enlighten us. What the heck is the drammer process? You introduced the subject so let us know exactly what it is and how it works. I don't want to search.
gaz189 said:
I was reading about drammer and how they have tested multiple phones on unrooting them? could someone possibly get this to work on the S7? i know it wont lead to roms, and i have no clue if this is really helpful but i just wanted to ask. and to also inform them about the this new threat.
I tried posting the web link but im "new" (what i get for not posting as much) you can just google Drammer and it should come out it is also named Rowhammer bitflips
Click to expand...
Click to collapse
Drammer roots phones, it doesn't unroot phones from what i've read....
I downloaded the apk to test if you are vulnerable and i didn't see any flips, so we may not be vulnerable. It's still too early to tell at this point...
Here is the link for the test app....
https://www.vusec.net/projects/drammer/
Also need to look in to the DirtyCow root process....
https://nakedsecurity.sophos.com/2016/10/25/dirtycow-linux-hole-works-on-android-too-root-at-will/
dkb218 said:
Enlighten us. What the heck is the drammer process? You introduced the subject so let us know exactly what it is and how it works. I don't want to search.
Click to expand...
Click to collapse
DylanTheVillian said:
Drammer roots phones, it doesn't unroot phones from what i've read....
I downloaded the apk to test if you are vulnerable and i didn't see any flips, so we may not be vulnerable. It's still too early to tell at this point...
Here is the link for the test app....
https://www.vusec.net/projects/drammer/
Click to expand...
Click to collapse
dkb: i will explain further when i am out of school and work.
and dylan that stress app is not used for unrooting it was simply a field test where they can see which phones can be compromised. but what i meant was in the same way they did can someone possibly look into developing a way. because if you scroll down they released the templating code. which they also mention they have not released it as a exploit but maybe they will and maybe from that code someone can compile a root maybe?
gaz189 said:
dkb: i will explain further when i am out of school and work.
and dylan that stress app is not used for unrooting it was simply a field test where they can see which phones can be compromised. but what i meant was in the same way they did can someone possibly look into developing a way. because if you scroll down they released the templating code. which they also mention they have not released it as a exploit but maybe they will and maybe from that code someone can compile a root maybe?
Click to expand...
Click to collapse
I'm not sure you know what you're talking about... you keep saying "unroot" that would be to remove root... the exploit roots phones and allows us to gain root not remove it....
And That is exactly what i said.... "I downloaded the apk to test if you are vulnerable and i didn't see any flips, so we may not be vulnerable."
DylanTheVillian said:
I'm not sure you know what you're talking about... you keep saying "unroot" that would be to remove root... the exploit roots phones and allows us to gain root not remove it....
And That is exactly what i said.... "I downloaded the apk to test if you are vulnerable and i didn't see any flips, so we may not be vulnerable."
Click to expand...
Click to collapse
sorry I am meaning root, just getting things mixed up, and yeah but they also stated not all device may be ticked at the same time, it can be when device is on low battery.. stuff like that. or simply we might be vulnerable, but we wont know till someone actually tries it out
DylanTheVillian said:
I'm not sure you know what you're talking about... you keep saying "unroot" that would be to remove root... the exploit roots phones and allows us to gain root not remove it....
And That is exactly what i said.... "I downloaded the apk to test if you are vulnerable and i didn't see any flips, so we may not be vulnerable."
Click to expand...
Click to collapse
Curious... How long did it run with you? I'm running it atm (its been over 45 mins) on aggresive and its still running... ..
djr4x4 said:
Curious... How long did it run with you? I'm running it atm (its been over 45 mins) on aggresive and its still running... ..
Click to expand...
Click to collapse
I didn't run on aggressive I left it at default and it didn't run for more than 2 minutes...
Is your device still responsive? Is the word flip or flips in any of the output on the screen?
Sent from my SM-G935U using Tapatalk
Still responsive and its still running.. the times i have glanced at it.. flips is still at 0.. its running right now and im using the phone to type this..
Sent from my SM-G935T using Tapatalk
---------- Post added at 05:56 PM ---------- Previous post was at 05:53 PM ----------
Just finished and showed 0 flips..
Sent from my SM-G935T using Tapatalk
So far, "Drammer," as the researchers have dubbed their exploit, has successfully rooted the following handsets: the Nexus 4, Nexus 5, and G4 from LG; Moto G models from 2013 and 2014 made by Motorola; the Galaxy S4 and Galaxy S5 from Samsung; and the One from OnePlus. In some cases, the results aren't always consistent. For example, only 12 of the 15 Nexus 5 models were successfully rooted, while only one of two Galaxy S5 were compromised.
Click to expand...
Click to collapse
ref: http://arstechnica.com/security/201...tflips-to-root-android-phones-is-now-a-thing/
It's not even a sure bet with the Samsung phones two generations ago. So I doubt that it'll work.
sx core cant load hakate and other to install?
You should be able to go into the sxos menu (hold vol + when the sxcore injects the payload) then go to options and tap payloads on the left. That will list any payloads that you have on the root of the SD card. So just make sure you have the hekate payload on the root of your card and boot into that.
And I presume this would work on a Mariko Switch or Switch Lite with the modchip installed, yes?
blakegriplingph said:
And I presume this would work on a Mariko Switch or Switch Lite with the modchip installed, yes?
Click to expand...
Click to collapse
No, no Android support for either of those at this point, because no drivers for Mariko.
hippy dave said:
No, no Android support for either of those at this point, because no drivers for Mariko.
Click to expand...
Click to collapse
That's quite a shame considering how early revision Switches cost a fortune.
blakegriplingph said:
That's quite a shame considering how early revision Switches cost a fortune.
Click to expand...
Click to collapse
I feel you. I love my Mariko so much, android would just sweeten the deal! I wonder how long until Mariko drivers are available.
Unfortunately, I wouldn't bet on it happening any time soon. Due to the fact Mariko/patched models require SX Core, combined with the difficulty of installing the chip and the lack of supply recently, there isn't much of a demand as the amount of people with a Mariko/patched Switch that could run it is minimal.
Really hope it happens though. I've got my chip flashed with Spacecraft and I'm running Atmosphere, Android on top of that would be the icing on the cake.
I am curious when and who will be the first in the world to share and show that he has android on mariko, especially that the sxcore HWFLY clone is now available. I am waiting, I will honestly say it would be something great.